OpenAI Data Breach Exposes User Metadata via Mixpanel
- On November 8, an attacker accessed Mixpanel’s systems, exporting customer-identifiable metadata.
- Exposed data included usernames, email addresses, and browser locations for some OpenAI API users.
- No prompts, API keys, payment information, or authentication tokens were compromised in the breach.
- Only users accessing OpenAI tech via external apps powered by GPT were affected.
- OpenAI terminated its use of Mixpanel following the incident to enhance security measures.
This breach highlights the importance of robust security protocols when handling sensitive user data through third-party services. (Source)